-
No.1 Scheffler fires sizzling 61 to seize PGA St. Jude lead
-
Arteta tells Arsenal fans not to fret over his future
-
Venezuela frees more political prisoners amid post-Maduro talks
-
Mexico's Indigenous chief justice hits back at discrimination
-
Werro upstages Hodgkinson to win thrilling Euro 800m gold
-
Werro wins 800m race for the ages, Warholm and Tamberi hit four
-
Werro upstages Hodgkinson to win Euro 800m gold
-
Jimenez rescues dramatic Wolves draw in Championship opener
-
Hurricane poised to hit Hawaii as El Nino stirs Pacific
-
Taliban govt to mark five years ruling Afghanistan
-
Ex-Cambridge professor at centre of plagiarism scandal found dead
-
Stocks slip in cautious trading after weak US retail sales data
-
Wildfire threatens Canada wine region
-
Gramercy Networks Announces New Global Ultra-Low Latency Financial Network Connecting Major Trading Hubs
-
'Normal guy' turned killer over US insurance industry grievances
-
NFL bans Falcons defender Pearce eight games for domestic violence
-
Norway's hurdles king Warholm wins fourth European title
-
US says 19 million recalled eggs pose deadly risk
-
Liverpool deal with Bezos consortium raises stakes in US battle for Premier League power
-
Former Cincinnati contenders suffer contrasting first-round fates
-
Colombia hopes for miracles as search for quake victims goes on
-
Argentina's Romero confirms Tottenham exit as Atletico move looms
-
Popovici, Quadarella mine more gold at Europeans as Marchand flexes in butterfly
-
Homeless, jobless: Colombia quake survivors 'left with nothing'
-
'I shot Mr Thompson': Stunning confession in US health exec's slaying
-
Cubans find rest on rooftops as blackouts drive them from home
-
San Francisco to host 2028 MLB All-Star Game
-
World champ McIntosh crashes out of Pan Pacs 400m free
-
Trump dismisses concerns over conditions on US aircraft carrier
-
T'Wolves set Garnett celebration for Celtics clash
-
Zambia resumes vote count after pause over violence
-
Popovici nails freestyle double with third men's European 200m gold
-
Wind spurs forest fire in western Germany, with scores evacuated
-
Premier League club Liverpool sell minority stake to Jeff Bezos consortium
-
Pakistan captain Babar in injury scare ahead of England opener
-
Italian police recover stolen Renoir, Cezanne and Matisse works
-
Mangione admits shooting health care CEO
-
Stocks slip in cautious trading, oil turns higher
-
UN warns sanctions chill is stopping Cuba aid
-
Colombia quake survivor faces life without triplet sisters
-
Alleged US healthcare CEO killer says will plead guilty to stalking
-
Bones of medieval kings saved from Spanish wildfire
-
France's Macron in hot water over jet ski picture
-
US retail sales weakest in over a year, consumer sentiment plunges
-
Nursing federation demands proper pay, protection on Ebola front line
-
In wildfire town, PM says UK must 'face up to climate change'
-
France upholds assisted dying law, strikes down social media ban for children
-
In town hit by wildfire, PM says UK must 'face up to climate change'
-
Body found after wildfire hits Croatian coastal town
-
UK parliament probe into Farage resumes after polls win
Philippines health insurer hacked: What we know
Hackers have stolen the personal data of potentially millions of people from the Philippines's national health insurer, which has urged members to change their passwords after the "staggering" cyberattack.
The hackers have started releasing files including confidential memos from the stolen data to pressure the government into paying a $300,000 ransom.
Here is what we know so far about the attack, which was discovered by the Philippine Health Insurance Corporation (PhilHealth) on September 22:
What did the hackers steal?
PhilHealth and the government have yet to say exactly how many people have been impacted, but the insurer warned members in a notice that data such as addresses, phone numbers and insurance IDs was compromised.
As of June 30, according to its website, PhilHealth had more than 59 million direct and indirect contributors -- more than half the population of the Philippines.
PhilHealth asked members to monitor credit card transactions and change passwords, especially for financial services.
Separately, employee information was also stolen from the targeted computers.
The hackers released some of the data on the dark web, showing health memos and other information that a top government official described as confidential.
An investigation into the scale of the attack is ongoing, but the National Privacy Commission has described the amount of data stolen as "staggering".
Who are the hackers, and what do they want?
The Philippine government has referred to the attackers as the Medusa group, who have demanded $300,000 to restore access to PhilHealth computers and delete the stolen data.
MedusaLocker, first detected in late 2019, has been used to mainly target healthcare organisations and its creators took particular advantage of the emergency situation during the Covid-19 pandemic, according to a US government report.
The ransomware has been sold to criminal actors, and a US government cybersecurity advisory said its creator receives a cut of any ransom.
It was not clear if the Medusa group identified by the Philippines government is the creator of or an entity that purchased MedusaLocker.
How did they get the data?
On September 22, PhilHealth staff were unable to access a number of computers, which displayed a message saying hackers had locked the machines and encrypted the data.
The insurer shut down the affected systems to try and stop the attack from spreading, slowing or entirely shutting down some online services for days.
The government has so far not said exactly how hackers got access to the computers.
But in interviews with local media last week, senior PhilHealth official Israel Pargas said the insurer did not have an antivirus software at the time of the attack.
How has the government responded?
With a blunt 'No'. The Philippines does not pay ransom in any criminal cases, including cyberattacks, officials have said.
However, with hackers releasing more data from the stolen files, calls have grown for the government to conduct an audit of its cyber defences.
The National Privacy Commission said Saturday it has started an investigation into any potential lapses and data law violations by PhilHealth.
The NPC said its analysis of 734 GB of stolen data revealed "sensitive personal data", and warned the public that anyone who downloads this information could face criminal charges.
Q.Bulbul--SF-PST